package com.mz.demo.handler;

import com.alibaba.fastjson.JSON;
import com.mz.demo.utils.entity.GlobalException;
import com.mz.demo.utils.entity.R;
import com.mz.demo.utils.tools.WebUtils;
import jakarta.servlet.ServletException;
import jakarta.servlet.http.HttpServletRequest;
import jakarta.servlet.http.HttpServletResponse;
import org.springframework.security.access.AccessDeniedException;
import org.springframework.security.web.access.AccessDeniedHandler;
import org.springframework.stereotype.Component;

import java.io.IOException;

/**
 * spring security 授权失败处理
 * */
@Component
public class AccessDeniedHandlerImpl implements AccessDeniedHandler {

    @Override
    public void handle(HttpServletRequest request,
                       HttpServletResponse response,
                       AccessDeniedException accessDeniedException) throws IOException, ServletException {
        WebUtils.renderString(response, JSON.toJSONString(R.fail(403, "没有权限，无法访问")));
    }
}
